Skip to content
32 linesCodeBlameRaw

Pick any line to see why it is the way it is: the commit, the pull request and issue it came from, and what the agent was thinking.

Invite-only launch: sign in with GitHub, repository access and lifecycle, many emails, a new look1These are the companies that process information for g1t on our behalf, what each does, and what it receives. Each is bound by a contract that limits it to doing that. **We'll update this page before we add a new subprocessor**, and list the change in the [policies' history](/policies).
2
3## Subprocessors
4
5| Company | What they do for g1t | What they receive | Where |
6| --- | --- | --- | --- |
7| **Cloudflare, Inc.** | Hosting and the network g1t runs on (Workers), databases (D1), storage for repositories, avatars and screenshots (Artifacts, KV and R2), queues, the sandboxes agents and checks run in (Containers), sending email (Email Service), search embeddings (Workers AI and Vectorize), the gateway hosted agents reach their model through (AI Gateway), and screenshots of deployed apps (Browser Rendering) | Everything stored on g1t, and every request to it | Global |
8| **Stripe, Inc.** | Payments, cards, invoices and receipts | Workspace owners' billing details, card details (entered on Stripe's page, never on g1t), and what each invoice charges | United States |
Merge site-audit: SEO routes, analytics with consent first in Europe, security page, founder and X account, docs header; the tour opens on the pull request and leads with Code, on the real shell, with Agents and Docs working today9| **HeyCatch, Inc.** | Product analytics on g1t.sh: page views and clicks. Visitors in the EU, EEA, UK and Switzerland are asked first | The page's address (names replaced outside the public pages), the text of what is clicked on the public pages, browser and device type, IP address, the referring site, an analytics id, and a signed-in person's internal account id. Never repository content, chat, page titles inside the app, what you type, or recordings of your session | United States |
Invite-only launch: sign in with GitHub, repository access and lifecycle, many emails, a new look10| **Anthropic, PBC** | The AI model behind g1t's hosted agents | What an agent run needs: the issue or request, the relevant code and files, the conversation so far, and tool results. Not your account details. Only when a hosted agent runs | United States |
11
Git storage hardened, pages in tens of milliseconds, honest security alerts, and costs reconciled daily12**AI Gateway logs.** Each hosted agent's model request passes through Cloudflare AI Gateway, which records it with the workspace, repository and pull request it was for, so we can bill it accurately.
Invite-only launch: sign in with GitHub, repository access and lifecycle, many emails, a new look13
Git storage hardened, pages in tens of milliseconds, honest security alerts, and costs reconciled daily14**Training.** Anthropic does not train its models on what g1t sends through its commercial API.
Invite-only launch: sign in with GitHub, repository access and lifecycle, many emails, a new look15
Merge site-audit: SEO routes, analytics with consent first in Europe, security page, founder and X account, docs header; the tour opens on the pull request and leads with Code, on the real shell, with Agents and Docs working today16**HeyCatch** stores analytics events with PostHog (United States) and lists its own subprocessors at [heycatch.ai/subprocessors](https://heycatch.ai/subprocessors). Its [data processing addendum](https://heycatch.ai/dpa) covers what it does for g1t, including the EU Standard Contractual Clauses for transfers to the United States.
17
Invite-only launch: sign in with GitHub, repository access and lifecycle, many emails, a new look18## Other services g1t calls
19
20- **OSV.dev**, run by Google: the names and versions of packages in your lockfiles, to look up known vulnerabilities. Nothing that identifies you or your repository.
21
22## Services you choose
23
24When you connect these, your information goes to them because you asked, under your own agreement with them. They are not g1t's subprocessors:
25
26- **Your own model providers**, such as OpenAI, Google, Groq, OpenRouter, or your own Anthropic or Azure account, when your workspace routes agents to them.
Git storage hardened, pages in tens of milliseconds, honest security alerts, and costs reconciled daily27- **Integrations**, such as GitHub, Linear, Jira, Sentry and Datadog.
Invite-only launch: sign in with GitHub, repository access and lifecycle, many emails, a new look28- **Webhooks** you add, which send events to the addresses you choose.
29- **Hosts your sandboxes reach**, such as package registries and anything you allow in your guardrails.
30- **Custom domains** you point at your deployments.
31
32Questions about subprocessors: [hey@flagon.io](mailto:hey@flagon.io).

This file's history is long; its oldest lines are credited to the oldest commit read.